CVE-2007-2303

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
26/04/2007
Last modified:
09/04/2025

Description

Directory traversal vulnerability in includes/footer.php in News Manager Deluxe (NMDeluxe) 1.0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the template parameter.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:news_manager_deluxe:news_manager_deluxe:1.0.1:*:*:*:*:*:*:*